Skip to content

Block insecure non-multi options in clone/clone_from#1609

Merged
Byron merged 1 commit intogitpython-developers:mainfrom
Beuc:block-insecure-options-clone-non-multi
Jul 10, 2023
Merged

Block insecure non-multi options in clone/clone_from#1609
Byron merged 1 commit intogitpython-developers:mainfrom
Beuc:block-insecure-options-clone-non-multi

Conversation

@Beuc
Copy link
Contributor

@Beuc Beuc commented Jul 10, 2023

I'm part of the Debian LTS (Long Term Support) Team and I'm working on integrating the fix for CVE-2022-24439 for GitPython in Debian.

After contacting @Byron privately we determined that #1521 would need a follow-up fix, which I hereby propose in this PR.

I also modified 2 tests to validate the change, but I'm not sure if we want to double-check (multi/non-multi) all the currenttt clone/clone_from tests, so I didn't, but I can do so if necessary.

Loading
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants